PT-2023-3206 · Ibm · Ibm Txseries For Multiplatforms+2

Published

2023-06-06

·

Updated

2023-06-15

·

CVE-2023-33848

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM TXSeries for Multiplatforms versions 8.1 through 9.1 CICS TX Standard versions 10.1 through 11.1 CICS TX Advanced versions 10.1 through 11.1
Description The issue is related to the application's excessive data output, which could allow a remote attacker to gain unauthorized access to confidential information. A privileged user could obtain highly sensitive information by enabling debug mode.
Recommendations For IBM TXSeries for Multiplatforms versions 8.1 through 9.1, consider disabling debug mode to prevent sensitive information disclosure. For CICS TX Standard versions 10.1 through 11.1, restrict access to sensitive information and avoid enabling debug mode. For CICS TX Advanced versions 10.1 through 11.1, limit the output of sensitive data to prevent unauthorized access.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2023-03326
CVE-2023-33848

Affected Products

Cics Tx Advanced
Cics Tx Standard
Ibm Txseries For Multiplatforms